Vulnerabilities
Ivanti Sentry Critical Flaws Exploited 24 Hours After Disclosure
Twenty-four hours separated disclosure from in-the-wild exploitation — CISA's emergency directive gives federal agencies three days to patch.
Cybersecurity writer and analyst. Covering breaches, threats, and vulnerabilities — analysis beyond the headline.
Vulnerabilities
Twenty-four hours separated disclosure from in-the-wild exploitation — CISA's emergency directive gives federal agencies three days to patch.
Vulnerabilities
Google Threat Intelligence confirmed mass exploitation of an Oracle PeopleSoft zero-day by ShinyHunters; universities are the primary target and the extortion has begun.
Nation-State Cyber Threats
ESET's research update reframes OceanLotus — the targeting is now inward.
Nation-State Cyber Threats
Another indictment in a Russia-aligned case — but unlike most, this defendant is already in US custody after an extradition from Thailand.
Ransomware
A ransomware group that spreads like a worm and counts 478 victims — and the Krebs investigation now identifying the people running it.
Nation-State Cyber Threats
Consumer compression software remains a reliable initial-access vector in the Russia-Ukraine cyber theater.
Policy & Government
CISA's new directive ends CVSS-led patching for federal agencies — risk becomes the prioritization signal, and the most dangerous bugs must be patched in three days.
Vulnerabilities
The largest Patch Tuesday on record arrives with three publicly disclosed zero-days — and a running feud with one researcher producing a steady stream of Microsoft exploits.
Nation-State Cyber Threats
A small-footprint, long-tail Chinese proxy network grows past 1,500 devices — defenders should account for this layer of reconnaissance infrastructure.
Cybersecurity 101
A defender's guide to the MITRE ATT&CK framework — what it is, how tactics, techniques, and matrices are structured, and how to use it for detection and threat intel.
Artificial Intelligence (AI)
Anthropic's Fable 5 launches with “cyber safeguards” baked in — a framing that would, days later, become the center of a precedent-setting US export-control action.
Supply Chain Attack
Miasma's open-sourcing turns the previous day's Microsoft-repo incident into the first instance of a much broader supply-chain threat any actor can now reproduce.